CVE-2007-2223

Publication date

2007-08-14 21:00:00

Family

microsoft

State

PUBLISHED

Description

Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringData method on a (1) TextNode or (2) XMLDOM object, which causes an integer overflow that leads to a buffer overflow.